FIELD: computer engineering.
SUBSTANCE: invention relates to the computer engineering. Method of reducing the number of false triggering comprises steps of recognizing, by means of a malicious file detection means, a file belonging to a certain category of files; detecting false triggering of malware detection means by means of evaluation means; calculating, by means of false triggering means, a flexible hash file; adding, by means of false triggering means, the calculated flexible hash to the exception database; method is used to detect malicious files for analyzing files in order to recognize files belonging to a certain category of files, wherein the malicious file detection means excludes from the analysis performed for the purpose of recognizing the file relating to a certain file category, if the flexible hash value of the said file is stored in the exception database.
EFFECT: reduced number of false triggering of methods, having generalizing capacity, in relation to files, in respect of which verification has not yet been carried out in order to assign them to a certain category of files.
4 cl, 3 dwg
Title | Year | Author | Number |
---|---|---|---|
SYSTEM AND METHOD FOR TWO-STAGE CLASSIFICATION OF FILES | 2018 |
|
RU2708356C1 |
SYSTEM AND METHOD OF CHECKING FILE EDS | 2018 |
|
RU2706873C1 |
SYSTEM AND METHOD OF PROOFING AGAINST SCANNING OF EDS FILES | 2018 |
|
RU2708353C1 |
METHOD FOR DETECTING MALICIOUS FILES BASED ON FILE FRAGMENTS | 2019 |
|
RU2747464C2 |
SYSTEM AND METHOD FOR CATEGORIZING APPLICATION ON COMPUTING DEVICE | 2019 |
|
RU2747514C2 |
SYSTEM AND METHOD FOR REDUCING LOAD ON MALWARE DETECTION SERVICE | 2019 |
|
RU2739833C1 |
METHOD FOR DETERMINING SIMILARITY OF COMPOSITE FILES | 2016 |
|
RU2628922C1 |
METHOD OF DETECTING HARMFUL COMPOSITE FILES | 2016 |
|
RU2634178C1 |
SYSTEM AND METHOD FOR CORRECTING ANTIVIRUS RECORDS | 2011 |
|
RU2487405C1 |
METHOD OF COMPOSITE FILE ACCESS CONTROL | 2017 |
|
RU2659739C1 |
Authors
Dates
2019-11-21—Published
2018-06-29—Filed